Information Assurance/Security Specialist-Expert (ISSO)

Posted 6 Days Ago
Be an Early Applicant
Washington, DC, USA
In-Office
Expert/Leader
Cloud • Information Technology • Cybersecurity • Defense
The Role
Serve as the Information System Security Officer (ISSO) leading A&A/ATO activities, maintaining security documentation, managing POA&Ms, conducting risk assessments and security testing, supporting audits and incident response, developing policies and training, and liaising between contractor teams and federal authorities to ensure DOE/NNSA and federal cybersecurity compliance.
Summary Generated by Built In

Description

We are seeking a highly skilled and mission-focused Information Assurance / Security Specialist (ISSO) to support cybersecurity compliance, Assessment & Authorization (A&A) activities, and Authority to Operate (ATO) documentation for designated systems. The ISSO will serve as a key liaison between contractor teams and federal certification authorities, ensuring security requirements are met, risks are communicated, and systems remain compliant with DOE, NNSA, and federal cybersecurity standards. This role requires strong technical acumen, exceptional documentation skills, and the ability to guide and advocate for contractor teams throughout the security lifecycle.

Requirements

 Key Responsibilities

  • Implement DOE and NNSA cybersecurity policies and procedures for assigned information systems.
  • Lead A&A activities, ensuring systems meet federal and organizational security requirements.
  • Maintain all ATO documentation, including security plans, access control records, and configuration management artifacts.
  • Manage and track POA&M items; assist in completing remediation activities where possible.
  • Conduct risk assessments, identify vulnerabilities, and recommend mitigation strategies.
  • Perform cybersecurity tests and assessments; provide actionable results to the ISSM.
  • Evaluate the security impact of proposed system changes and recommend risk-based solutions.
  • Develop and deliver cybersecurity training based on user roles and responsibilities.
  • Respond to security incidents, document findings, and support incident resolution.
  • Create and maintain security processes, procedures, disaster recovery plans, and incident response plans.
  • Support audits and external reviews; manage findings and drive favorable outcomes.
  • Develop new policies, documentation, and training materials when required, ensuring alignment across contractor and federal stakeholders.
  • Communicate cybersecurity status, risks, and mitigation strategies clearly to leadership and stakeholders.
  • Lead and mentor assigned resources (2 FTEs), ensuring high-quality documentation and successful security outcomes.

Required Qualifications

  • Experience supporting A&A/ATO processes within federal environments (DOE/NNSA preferred).
  • Strong understanding of federal cybersecurity frameworks, risk management, and compliance requirements.
  • Ability to create clear, accurate, and technically sound security documentation.
  • Experience supporting audits, external reviews, and POA&M management.
  • Strong communication skills with the ability to brief technical and non-technical stakeholders.
  • Ability to negotiate policy, documentation, and training across diverse stakeholder groups.

A notification to prospective applicants that reviews, and tests for the absence of any illegal drug as defined in 10 CFR 707.4, will be conducted by the employer and a background investigation by the Federal government may be required to obtain an access authorization prior to employment, and that subsequent reinvestigations may be required. The position is covered by the Counterintelligence Evaluation Program regulations at 10 CFR part 709, the announcement should also alert applicants that successful completion of a counterintelligence evaluation may include a counterintelligence-scope polygraph examination. 

 As a federal contractor, we are committed to fair and equitable employment practices. We make employment decisions based on job-related qualifications, merit, contract requirements, and legitimate business needs, and prohibit unlawful discrimination in all employment practices 

As a federal contractor, we comply with Section 503 of the Rehabilitation Act and VEVRAA. No disability-related inquiries will be made prior to a conditional offer of employment, except as permitted by applicable law.

Employee Rights Under the National Labor Relations Act (NLRA): As a federal contractor, the Company complies with Executive Order 13496 and informs employees of their rights under the National Labor Relations Act. Information regarding these rights is available at the workplace and from the National Labor Relations Board. 

This position is covered by the Service Contract Labor Standards (SCLS). Compensation and fringe benefits will be provided in accordance with the applicable U.S. Department of Labor wage determination and any applicable collective bargaining agreement. 

Medical, dental, vision, and 401k benefits are included with this position. 

Skills Required

  • Experience supporting A&A/ATO processes within federal environments (DOE/NNSA preferred).
  • Strong understanding of federal cybersecurity frameworks, risk management, and compliance requirements.
  • Ability to create clear, accurate, and technically sound security documentation (security plans, access control records, CM artifacts).
  • Experience supporting audits, external reviews, and POA&M management.
  • Strong communication skills; ability to brief technical and non-technical stakeholders.
  • Ability to negotiate policy, documentation, and training across diverse stakeholder groups.
  • Experience leading and mentoring assigned resources (managing ~2 FTEs).
  • Ability to respond to security incidents and support incident resolution.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
29 Employees
Year Founded: 2014

What We Do

Powder River Industries, LLC is an ISO 9001 certified information technology company that provides enterprise IT products and services primarily to the United States Government. Operating as a certified small business (SDVOSB, EDWOSB, 8a), the firm specializes in cybersecurity, data science, and cloud computing solutions. It provides technical services across the entire system development life cycle to increase the safety and readiness of government operations.

Similar Jobs

PwC Logo PwC

Consultant

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
39 Locations
370000 Employees
99K-232K Annually

PwC Logo PwC

Systems Engineer

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
62 Locations
370000 Employees
155K-410K Annually

PwC Logo PwC

CTIO - UX Lead - Senior Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
58 Locations
370000 Employees
91K-322K Annually

PwC Logo PwC

Martech - Adobe Experience Manager (AEM) Sites and Assets - Senior Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
14 Locations
370000 Employees
124K-280K Annually

Similar Companies Hiring

NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account